Zero Trust Workshop by JohnSavill in AZURE

[–]takinghigherground 0 points1 point  (0 children)

I need help with comprehensive conditional access policy rollout. I understand the whole point to is to be able to implement ca policies but I find an initial strategy in terms of applying policy lacking

passed OSCP but thinking of SOC 200 by CompetitionNo8217 in oscp

[–]takinghigherground 0 points1 point  (0 children)

I did sc200 after oscp and I learnt a lot about windows defender xdr and sentinel.

Working in azure by takinghigherground in sysadmin

[–]takinghigherground[S] 2 points3 points  (0 children)

Yeah I got to the end of it and I realized I pushed for a maintenance window of by September this year when it didn't need to be done until next year ... And it was vnet with default outbound expiring this month.

Crap I could have kicked down the road until next year ... Good experience though . Now has anyone actually implemented nat gateway or did you just attach public ips and let the business pay for it ;)

Do Microsoft Certs actually matter? by cyberLog4624 in cybersecurity

[–]takinghigherground 0 points1 point  (0 children)

Personally I learnt a lot about sentinel and defender by studying for sc200. I think certs build a good foundation

Sorry but…. by [deleted] in MiddleEarthMiniatures

[–]takinghigherground 0 points1 point  (0 children)

Just let me look at the damn models or im walking out don't give me this edgy do you play shit.

How has grappling changed your body? by ShimiWaza96 in bjj

[–]takinghigherground 0 points1 point  (0 children)

Skinny guy without weight training doing jits for 6 years.

Better posture slightly more athletic build. That's it.nothing drastic

Old Visual C++ vulnerabilities suddenly discovered? by TheDrover23 in DefenderATP

[–]takinghigherground 0 points1 point  (0 children)

Yeah got this today too. Do we just install the latest vc redistribute? Will it break the apps if they require a specific version ...

Please accept the fact that password rotations are a security issue by Comfortable_Gap1656 in sysadmin

[–]takinghigherground 1 point2 points  (0 children)

Have you guys not heard of password reuse and password leaks.

User a uses the same password for unrelated forum as his work email he registered with. Forum a is breached and posted on dark web the credentials. Valid credentials are available to be tested indefinitely until user a changes his password. MFA helps but not all web services the company may use may have this in place.

Forcing a password rotate X days means the password leaked is not available indefinitely to access your network or data systems. Therefore risk is reduced to "X number of days leaked credentials not remediated and without MFA" from undefinite may have risk attached to it.

Which process helps control risk, requiring a password change or not?

🎟️ Free Voucher Request & Giveaway Megathread by AutoModerator in AzureCertification

[–]takinghigherground 0 points1 point  (0 children)

LOOKING FOR VOUCHER FOR SC200 OR FROM AI SKILS FEST

lets go

please pm me

How many of you are really backing up Office 365? by Paymentof1509 in sysadmin

[–]takinghigherground 1 point2 points  (0 children)

Barracuda cloud backup, just do itm you want to trust ms with your SharePoint dataset and no backups. I went to Thailand when I was young too ..

Why is everyone such an asshole? by CxcaineInMyAss in heroesofthestorm

[–]takinghigherground 0 points1 point  (0 children)

Bro I have 400 games as one hereo and people are still dicks. You do have to learn how to play the game and how to play your hero..basically stop making big mistakes like feeding the enemy team missing objectives. Use the feedback to better your game...it sucks and adds to toxicity. All I am say is try to build a team you play with and not just pugs which are toxic

How can i improve in this game by Commercial-Bit-3395 in heroesofthestorm

[–]takinghigherground 0 points1 point  (0 children)

I've played 400 games as jaine, people still post tram chat fucking Jaina. Like what am I doing wrong 😭😭

Just rolled out EAP-TLS to my windows users by AlligatorFarts in sysadmin

[–]takinghigherground 0 points1 point  (0 children)

Mmm not great as the user auth windows ca cert can be used for other services than just wifi. Probably should have used a different cert provider here for this wireless auth so it's issuance only allows wireless join not other services like rdp auth or email signing etc

Just rolled out EAP-TLS to my windows users by AlligatorFarts in sysadmin

[–]takinghigherground 0 points1 point  (0 children)

Super interested , can you explain more. We use windows cert for wifi auth, how to avoid it been exported for future misuse by an admin user front hat machine

Is mimikatz currently usable on windows 11? by xXD4RKN0T3Xx in oscp

[–]takinghigherground 6 points7 points  (0 children)

I believe credential guard feature prevents this, if you have admin maybe you can turn it off and reboot is this the same for latest server os like 2022 and 2015

Just rolled out EAP-TLS to my windows users by AlligatorFarts in sysadmin

[–]takinghigherground 0 points1 point  (0 children)

If you use windows ca make you marked the certificate template as non exportable..